mkimage "hardening" patch is broken

Bug #2046462 reported by Rasmus Villemoes
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
u-boot (Ubuntu)
New
Undecided
Unassigned

Bug Description

The ubuntu-hardening-limit-keynames-to-keydir.patch breaks 'mkimage -G'. Since that option was introduced upstream (commits 36bfcb62b3e and 824ee745fb, v2021.07), the "name" argument in rsa_pem_get_priv_key() may be NULL, but said patch unconditionally passes it to strchr().

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.